Senior Information Assurance Engineer - RMF

Job ID
2024-2995
# of Openings
1
Job Location
US-MD-Aberdeen Proving Ground

Overview

Soft Tech Consulting is seeking a highly motivated, self-directed individual to fill the role of Senior Information Assurance Engineer - RMF.  We are looking for a Senior Information Assurance Engineer - RMF who is team-oriented with strong information assurance skills and experience.  The selected individual will join a collaborative team environment where they will provide expertise and guidance for the project, including defining the projects objectives, facilitating quality control and assist in coordinating the efforts of team members in order to deliver the project according to plan. The Senior Information Assurance Engineer - RMF plays a strong role in client relations and project success. Key to the success of this position is the successful delivery of projects and effective communication to all levels of staff for reporting project status.

 

MUST BE US CITIZEN

MUST HAVE INTERIM TOP SECRET CLEARANCE OR HIGHER

Responsibilities

  • Govern and monitor the IT security posture of all DAC (Data Analysis Center) network enclaves, unclassified and classified, as well as provide authority on Cybersecurity policies.
  • Work closely with the client regarding policy creation, best business practices, and general Cybersecurity governance.
  • Function as the primary DAC POC for all RMF Assess and Authorize (A&A) responsibilities and Cybersecurity inspection actions.
  • Serve as the DAC Information System Security Manager, Representative (ISSM-R) for all Cybersecurity actions required.
  • Responsible for all DAC activities relating to Cybersecurity procedures and systems.
  • Confer with and advise subordinates on administrative policies and procedures and resolving technical problems, priorities, and methods.
  • Consult with and advise other support teams regarding internal controls and security procedures.
  • Prepare activities and progress reports relating to the information systems audit function

Task for Cybersecurity– Support (Risk Management Framework (RMF) Assess & Authorize)

  • Manage all steps of the DoD Risk Management Framework (RMF) assess & authorize process for DAC (Data Analysis Center).
  • Develop Plan of Actions and Milestones (POA&M) for registered DAC systems.
  • Manage and maintain the System Security Plan (SP) for DAC.
  • Assess security controls in accordance with NIST SP 800-53.
  • Possess in-depth knowledge of all NIST and CNSSI publications related to RMF and security controls for national security systems (NSS).
  • Maintain ISSM and Program Manager (PM) roles within the instance of eMASS for DAC client systems.
  • Register new systems within eMASS as required.
  • Obtain Interim Authority to Test (IATT) authorization for new systems.
  • Create Assess-only RMF instances for software packages (NETCOM Certificate of Networthiness replacement).
  • Develop and maintain System-level artifacts for associated systems within eMASS.
  • Coordinate the development of technology-level artifacts with other teams.
  • Advise other teams on STIG compliance and mitigation strategies.
  • Manage the Authority to Operate (ATO) lifecycle for associated DAC systems, to include coordinating Security Control Assessor – Validation (SCA-V) teams.
  • Develop and maintain FISMA metrics for DoD Cybersecurity scorecard reporting.
  • Maintain FISMA metric reporting within the client system.
  • Advise client CISO, and ISSM of all DoD RMF matters related to associated systems.
  • Ensure STIG checklists and associated artifacts for all technologies are reviewed, and validation results are posted to the client portal.

Qualifications

  • BA or BS Bachelor’s Degree with 10+ years of overall applicable experience highly preferred
  • Minimum requirement is HS Diploma with 12+ years of overall applicable experience 
  • Interim Top Secret clearance accepted at start, but ultimately requires Top Secret clearance
  • Must have Security+ certification (also desire any of the following: CAP, CND, Cloud+, GSLC, HCISPP, CCNA Security, CySA+, GICSP, GSEC, SSCP)
  • Experience with policy creation, best business practices and general Cybersecurity governance.
  • Experience in RMF Assess and Authorize (A&A) and Cybersecurity inspection actions.
  • Experience serving as Information System Security Manager, Representative (ISSM-R).
  • Experience managing all steps of the DoD Risk Management Framework (RMF) assess & authorize processes.
  • Experience assessing security controls in accordance with NIST SP 800-53.
  • Experience creating Assess-only RMF instances for software packages.
  • Experience developing Plan of Actions and Milestones (POA&M).
  • Experience creating policy, best business practices and general Cybersecurity governance.
  • Possess in-depth knowledge of all NIST and CNSSI publications related to RMF and security controls for national security systems (NSS).
  • Experience developing, maintaining and reporting FISMA metrics.
  • Experience managing the Authority to Operate (ATO) lifecycle to include coordinating Security Control Assessor – Validation (SCA-V).
  • Must be able to work independently. 
  • Must have strong verbal and written communication skills.
  • Must be able to follow instructions and provide support to all team members.

About Us

Soft Tech Consulting, Inc. is a woman and minority-owned business headquartered in Chantilly, VA. With contracts in both the public and private sectors in the DC metro area and across the country, Soft Tech is an organization made up of highly successful and talented Information Technology professionals offering enterprise class solutions for any size organization at great value. Soft Tech’s mission is to help government organizations design, implement, and maintain mission critical Information Technology solutions. By focusing jointly on our employees and our customers, we are able to achieve our mission by providing each and every one of our customers with continuous quality customer support.
 
Soft Tech Consulting, Inc. is an Equal Opportunity Employer.

Options

Sorry the Share function is not working properly at this moment. Please refresh the page and try again later.
Share on your newsfeed